Логотип exploitDog
bind:CVE-2014-0035
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2014-0035

Количество 3

Количество 3

redhat логотип

CVE-2014-0035

почти 12 лет назад

The SymmetricBinding in Apache CXF before 2.6.13 and 2.7.x before 2.7.10, when EncryptBeforeSigning is enabled and the UsernameToken policy is set to an EncryptedSupportingToken, transmits the UsernameToken in cleartext, which allows remote attackers to obtain sensitive information by sniffing the network.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2014-0035

больше 11 лет назад

The SymmetricBinding in Apache CXF before 2.6.13 and 2.7.x before 2.7.10, when EncryptBeforeSigning is enabled and the UsernameToken policy is set to an EncryptedSupportingToken, transmits the UsernameToken in cleartext, which allows remote attackers to obtain sensitive information by sniffing the network.

CVSS2: 4.3
EPSS: Низкий
github логотип

GHSA-v45r-rj5x-hpg2

больше 3 лет назад

Cleartext Transmission of Sensitive Information in Apache CXF

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2014-0035

The SymmetricBinding in Apache CXF before 2.6.13 and 2.7.x before 2.7.10, when EncryptBeforeSigning is enabled and the UsernameToken policy is set to an EncryptedSupportingToken, transmits the UsernameToken in cleartext, which allows remote attackers to obtain sensitive information by sniffing the network.

CVSS2: 4.3
1%
Низкий
почти 12 лет назад
nvd логотип
CVE-2014-0035

The SymmetricBinding in Apache CXF before 2.6.13 and 2.7.x before 2.7.10, when EncryptBeforeSigning is enabled and the UsernameToken policy is set to an EncryptedSupportingToken, transmits the UsernameToken in cleartext, which allows remote attackers to obtain sensitive information by sniffing the network.

CVSS2: 4.3
1%
Низкий
больше 11 лет назад
github логотип
GHSA-v45r-rj5x-hpg2

Cleartext Transmission of Sensitive Information in Apache CXF

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу